analysts, and IT stakeholders to enhance threat detection and automate response processes, ensuring a rapid and effective defense against cyber threats.
Key Responsibilities:
SIEM Platform Management:
- Design, implement, and tune SIEM solutions (e.g., Google SecOps, Splunk, IBM QRadar, Microsoft Sentinel, Elastic Stack, or similar).
- Create and maintain correlation rules, dashboards, and reports to detect anomalies and security threats.
- Integrate data sources from various systems (network, endpoints, cloud, applications) into the SIEM.
- Optimize data ingestion, parsing, and normalization to reduce noise and improve performance.
SOAR Platform Integration & Automation:
- Deploy and manage SOAR platforms (e.g., Google SecOps SOAR, Palo Alto Cortex XSOAR, Splunk SOAR, IBM Resilient, or similar).
- Design and develop automated playbooks for incident response, threat intelligence enrichment, and alert triage.
- Collaborate with SOC analysts to streamline workflows and reduce response time through automation.
- Maintain integrations with ticketing systems, threat intel feeds, and security tools.
Security Engineering & Support:
- Support incident response teams with actionable alerts and automated processes.
- Perform root cause analysis of recurring security events and develop engineering solutions to prevent them.
- Collaborate with compliance and audit teams to ensure security controls meet regulatory requirements.
- Provide training and documentation to SOC and IT teams on the use of SIEM/SOAR tools.
Job Qualifications:
Education & Experience:
- Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or related field.
- Minimum of 3-5 years of experience in cybersecurity, with at least 2 years in SIEM/SOAR administration or engineering.
- Experience in a Security Operations Center (SOC) environment is preferred.
Technical Skills:
- Strong hands-on experience with at least one major SIEM (e.g., Google SecOps, Splunk, QRadar, Sentinel, ArcSight).
- Experience with SOAR platforms and playbook development.
- Proficiency in scripting languages (Python, PowerShell, Bash) for automation and tool integration.
- Understanding of security frameworks (MITRE ATT&CK, NIST, CIS Controls).
- Familiarity with EDR/XDR, firewalls, IDS/IPS, threat intelligence platforms, and cloud security tools (AWS, Azure, or GCP).
Additional Requirements:
- Must be willing to work on a shifting schedule at Cyberpark, Cubao, with possible hybrid or daily RTO work set-up
Minimum 3 year(s) of experience is required
About Accenture
Accenture is a leading global professional services company that helps the world’s leading businesses, governments and other organizations build their digital core, optimize their operations, accelerate revenue growth and enhance citizen services-creating tangible value at speed and scale. We are a talent- and innovation-led company with approximately 791,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities.Visit us atwww.accenture.com
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, military veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by applicable law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.

